loader image
Home 9 Guide / Policy 9 Privacy Policy 9 Legal framework

Legal framework

Last updated: April 27, 2025 at 08:14

Iguality is committed to upholding the highest standards of data protection and privacy. As part of our dedication to safeguarding your personal information, we adhere to the General Data Protection Regulation (GDPR), a comprehensive framework established by the European Union to ensure the protection of individual rights and the secure handling of personal data.

Under the GDPR, we have implemented robust data protection measures to ensure the confidentiality, integrity, and availability of your information. These measures include:

  1. Lawful Basis: We ensure that all data processing activities carried out by Iguality are supported by a valid lawful basis as defined by the GDPR. This ensures that we handle personal data only when there is a legal and legitimate reason to do so.
  2. Data Minimization: We follow the principle of data minimization, collecting and processing only the personal data that is necessary and relevant for the specified purposes. This approach helps us reduce the risk of unauthorized access to excessive personal information.
  3. Consent and Transparency: We obtain your informed consent for the collection, use, and disclosure of your personal data. We provide clear and accessible information about our data processing practices through our privacy policy, ensuring transparency regarding the types of data we collect, how we use it, and the rights you have as a data subject.
  4. Security Safeguards: We have implemented stringent technical and organizational security measures to protect your personal data from unauthorized access, disclosure, alteration, or destruction. These measures include encryption, access controls, regular security assessments, and staff training on data protection best practices.
  5. Data Subject Rights: We respect and uphold your rights as a data subject under the GDPR. These rights include the right to access, rectify, erase, restrict processing, object to processing, data portability, and the right not to be subject to automated decision-making.
  6. Data Transfers: If personal data is transferred outside the European Economic Area (EEA), we ensure that appropriate safeguards are in place, such as Standard Contractual Clauses or the use of Privacy Shield-certified third parties, to protect your data during the transfer.

By adhering to the GDPR framework, Iguality strives to provide you with a high level of data protection, privacy, and control over your personal information. We continuously review and update our data protection measures to align with evolving legal requirements and best practices, ensuring that your privacy rights are respected and your data remains secure.

Home 9 Guide / Policy 9 Privacy Policy 9 Legal framework

Discover other relevant topics

Introduction

In this section, you will learn about the privacy practices of Associació Iguality Lab i Comunitat, including how your information is collected, used, and disclosed when using our digital platforms. We prioritize your privacy and provide transparent details on how we protect your personal data.

When and how we may use your data

In this section, you will learn how we responsibly use your personal information to enhance our mental health services and volunteering opportunities, ensuring your privacy and security. Discover how we utilize your data for marketing, testimonials, feedback collection, payment processing, support, analytics, legal compliance, and onboarding, always with your consent or as permitted by law.

Your rights

In this section, you will learn about your rights to access, rectify, erase, or transfer your personal data, and how to exercise these rights by contacting us at info@iguality.org. Understanding these rights is crucial, as withdrawing consent may affect your ability to use certain services.

Used software to store data

In this section, you will learn about the certified tools Iguality uses to securely store your personal data, including Airtable, Google Workspace, and Fillout, all of which adhere to industry-standard security practices. These platforms, along with encrypted communication tools like Slack and WhatsApp, ensure the highest level of confidentiality and compliance with GDPR regulations to

Usage of AI

At Iguality, we prioritize privacy and data protection while enhancing our services with AI technologies in collaboration with Airtable. In this section, you will learn about our AI usage, data anonymization practices, ethical guidelines, and the external services we employ to ensure efficient and responsible care provision.

Data retention

In this section, you will learn about our data retention practices, including how long we keep your data and the conditions under which it may be deleted. We explain the retention period, your rights to request data deletion, and how we protect residual data in backups.

Security

In this section, you will learn about the security measures we implement to protect your information, including two-step verification, trusted data storage tools, limited access to personal data, and regular backups. These steps are designed to enhance the security and confidentiality of your information, though it's important to remain cautious when transmitting data.

Storage of highly sensitive data

In this section, you will learn about Iguality's commitment to safeguarding highly sensitive data, particularly patient and user information, through secure storage solutions like Airtable and Fillout. Discover how we implement stringent security measures, restrict data access to authorized personnel, and adhere to data minimization principles to ensure privacy and confidentiality.

Data breach prevention and actions

In this section, you will learn about our comprehensive approach to handling data breaches, including immediate incident response, risk assessment, and communication with affected individuals and authorities. We are dedicated to transparency and taking swift action to mitigate potential harm and prevent future incidents.

Third Party Links and Use Of Your Information

In this section, you will learn about the presence of third-party links on our Service and the importance of reviewing their privacy policies. We emphasize that we have no control over and are not responsible for the content or practices of these external sites.

Cookies

In this section, you will learn about the various tracking technologies we use and how they impact your browsing experience. For detailed information on managing your preferences, please refer to our Cookie Policy.

Concent withdrawal

In this section, you will learn about your right to withdraw consent for the processing of your personal data and how to contact our Data Protection Officer to initiate this process. We are committed to respecting your choices, and withdrawing consent may affect the availability of certain services.

Grievance

In this section, you will learn how to contact our Grievance Officer for any questions or concerns about the processing of your information. We prioritize your privacy and satisfaction, ensuring all issues are addressed in compliance with relevant laws and regulations.
No information found.